Description of problem: Enterprise principals should be able to trigger a refresh of the trusted domain data in the KDC
Version-Release number of selected component (if applicable):
How reproducible: Always
Steps to Reproduce:
Additional info: https://pagure.io/freeipa/issue/7172
Verified the bug on the basis of following observations:
1. Verified that the scenarios mentioned in description and comment2 PASSED successfully.
Find Trust domain displays AD subdomain as enabled or disabled, bz1052973 : PASSED
Access is rejected for disabled domain, bz1070924, bz1170300 : PASSED
2. Also the regression run for ipa-trust-cli was successful
3. AVC denials during the regression run are tracked in separate bug: BZ#1529845
Thus on the basis of above observations, marking status of bug to "VERIFIED"
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.
For information on the advisory, and where to find the updated
files, follow the link below.
If the solution does not work for you, open a new bug report.